Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227831 7.5 危険 Tamlyn Creative Pty - Joomla! 用の bfsurvey コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4625 2012-12-20 19:28 2010-01-18 Show GitHub Exploit DB Packet Storm
227832 7.5 危険 Plohni - Advanced Comment System における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4623 2012-12-20 19:28 2010-01-18 Show GitHub Exploit DB Packet Storm
227833 7.5 危険 tourismscripts - Tourism Script Bus Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4618 2012-12-20 19:28 2010-01-18 Show GitHub Exploit DB Packet Storm
227834 7.5 危険 tourismscripts - Tourism Script Accommodation Hotel Booking Portal Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4617 2012-12-20 19:28 2010-01-18 Show GitHub Exploit DB Packet Storm
227835 7.2 危険 south river technologies - South River Technologies WebDrive におけるサービスを停止される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4606 2012-12-20 19:28 2010-01-13 Show GitHub Exploit DB Packet Storm
227836 5 警告 The phpMyAdmin Project - phpMyAdmin の scripts/setup.php におけるクロスサイトリクエストフォージェリ (CSRF) 攻撃を実行される脆弱性 CWE-DesignError
CVE-2009-4605 2012-12-20 19:28 2010-01-15 Show GitHub Exploit DB Packet Storm
227837 5 警告 SAP - SAP Kernel の sapstartsrv.exe におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4603 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
227838 4.3 警告 zeeways - Zeeways ZeeJobsite の basic_search_result.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4601 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
227839 7.5 危険 phpwares - PHP Inventory の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4597 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
227840 4.3 警告 phpwares - PHP Inventory の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4596 2012-12-20 19:28 2010-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
215211 7.8 HIGH
Local
qualcomm pm3003a_firmware
pm8009_firmware
pm8150a_firmware
pm8150b_firmware
pm8150c_firmware
pm8150l_firmware
pm8250_firmware
pmk8002_firmware
pmr525_firmware
pmx55_firmware
qbt2…
Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consume… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-11181 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215212 9.8 CRITICAL
Network
qualcomm mdm9206
mdm9607
mdm9650
msm8909w
mdm9655
mdm9615
mdm9640
mdm9645
sdx20
sdm630
qca4531
qca6174a
qca6574au
qca6584
qca6584au
qca9377
qca9378
qca9379
Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consum… CWE-125
Out-of-bounds Read
CVE-2020-11213 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215213 9.8 CRITICAL
Network
qualcomm mdm9206
mdm9607
mdm9650
mdm9655
mdm9615
mdm9640
mdm9645
msm8976
sdm630
sdx20
qca6584au
qca6584
qca6574au
qca6174a
qca4531
qca9379
qca9378
qca9377
Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronic… CWE-125
Out-of-bounds Read
CVE-2020-11212 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215214 7.5 HIGH
Network
qualcomm mdm9650
mdm9640
sdm630
qca6174a
qca6574au
qca9379
apq8096au
msm8996au
qca6574
qca6564
sd450
sd835
sd845
sd850
sd820
qcs605
sd855
qca4020
apq8053<…
Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT… CWE-20
CWE-125
 Improper Input Validation 
Out-of-bounds Read
CVE-2020-11200 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215215 7.8 HIGH
Local
qualcomm qca6574au
qca6574
sd855
sdx55
sa6155p
qca6390
sa6155
sa8155p
sa6145p
sa6150p
sa8150p
sa8155
sa8195p
sdx50m
sdx55m
sm7250p
qsm8250
aqt1000
pm3003a…
Out of bound access in computer vision control due to improper validation of command length before processing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer I… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2020-11180 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215216 9.8 CRITICAL
Network
qualcomm mdm9206
mdm9650
msm8909w
sdx20
sdm630
qca6174a
qca6574au
qca9377
qca9379
msm8937
apq8096au
msm8996au
msm8917
qca6574
qca6564
sd210
sd205
sd450
sd…
Possible integer overflow can occur when stream info update is called when total number of streams detected are zero while parsing TS clip with invalid data in Snapdragon Auto, Snapdragon Compute, Sn… CWE-190
 Integer Overflow or Wraparound
CVE-2020-11197 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215217 7.0 HIGH
Local
qualcomm mdm9206
mdm9650
msm8909w
sdx20
sdm630
qca6174a
msm8937
apq8096au
msm8996au
msm8917
sd205
sd210
qca6564
qca6574
qca9379
qca9377
qca6584au
qca6574au
Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon … CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2020-11179 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215218 9.8 CRITICAL
Network
qualcomm msm8909w
qca6174a
qca6574au
qca9379
msm8937
apq8096au
msm8996au
msm8917
qca6574
sd210
sd205
sd450
sd835
sd845
sd820
qcs605
sd855
apq8017
apq8053<…
Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consu… CWE-787
CWE-190
 Out-of-bounds Write
 Integer Overflow or Wraparound
CVE-2020-11167 2024-11-21 13:57 2021-01-21 Show GitHub Exploit DB Packet Storm
215219 5.5 MEDIUM
Local
qualcomm sd820_firmware
sd821_firmware
qcs603_firmware
qcs605_firmware
sda855_firmware
sa6155p_firmware
sa6145p_firmware
sa6155_firmware
sd855_firmware
sd_675_firmware
sd660_firm…
Improper authorization in DSP process could allow unauthorized users to downgrade the library versions in SD820, SD821, SD820, QCS603, QCS605, SDA855, SA6155P, SA6145P, SA6155, SA6155P, SD855, SD 675… CWE-863
 Incorrect Authorization
CVE-2020-11209 2024-11-21 13:57 2020-11-12 Show GitHub Exploit DB Packet Storm
215220 7.8 HIGH
Local
qualcomm sd820_firmware
sd821_firmware
qcs603_firmware
qcs605_firmware
sda855_firmware
sa6155p_firmware
sa6145p_firmware
sa6155_firmware
sd855_firmware
sd675_firmware
sd660_firmw…
Out of Bound issue in DSP services while processing received arguments due to improper validation of length received as an argument' in SD820, SD821, SD820, QCS603, QCS605, SDA855, SA6155P, SA6145P, … CWE-191
 Integer Underflow (Wrap or Wraparound)
CVE-2020-11208 2024-11-21 13:57 2020-11-12 Show GitHub Exploit DB Packet Storm